Trust Wallet Hacked, ~$7M Stolen

⚠️ Trust Wallet Extension Hack: $7M Crypto Stolen

Hack Details: Trust Wallet released Chrome extension version 2.68 on December 24, which included hidden malicious code in a file named 4482.js. This code sent users' wallet seed phrases to a fake server at api.metrics-trustwallet[.]com, registered on December 8. The issue came to light on December 25 when investigator ZachXBT flagged fund drains linked to the update. Users began reporting unauthorized transactions soon after. Trust Wallet confirmed the breach on December 26, stating it affected only this version. Mobile apps and other browser extensions remained safe, though the Chrome extension has about one million users.

Loss Impact: The attack resulted in roughly $7 million in cryptocurrency stolen across Bitcoin (about $3 million), Ethereum (over $3 million), and Solana ($431). Hundreds of users were affected. ZachXBT initially estimated losses above $6 million before the figure rose to $7 million. Some funds moved to centralized exchanges. Changpeng Zhao commented on X: “So far, $7m affected by this hack. Trust Wallet will cover. User funds are SAFU.” The breach occurred primarily when users imported seed phrases or authorized transactions.

Company Response: Trust Wallet released a fixed version 2.69 and advised users to disable the compromised extension before updating. They confirmed $7 million in losses and committed to full refunds. The company stated: “Supporting affected users is our top priority, and we are actively finalizing the process to refund the impacted users.” Affected users can submit claims through a support form. Investigation into how the malicious code entered the update continues. Read More.

️ On today's Top Picks:

  1. 🗳️ Aave “brand seizure” proposal fails to pass.
  2. 🎁 Base drops winnings from Holiday Rewards campaign.
  3. 📈 Gold, Silver, & Platinum reach new all-time highs.
  4. 💸 Architect raises $35M Series A led by $MIAX & Tioga.

Read time: ⏰ 6 minutes


Crypto News


• ⭐️ Aave $AAVE “brand seizure” proposal fails to pass; ~55% voted against, ~41% voted to abstain, & ~4% voted in favor; a "revote" with a proper process, clear terms, & higher turnout is expected next month.

Hyper Foundation $HYPE Assistance Fund now formally recognized as burned following a governance vote; the tokens were permanently removed from the circulating and total supply.

Uniswap $UNI UNIfication proposal passes; 100M UNI to be burned, fee switches to be turned on, Uniswap Labs to focus on the protocol, and more.

Bybit to restrict access for Japanese users starting in 2026; cites compliance with Japan's financial regulations; users will receive further communication as the restrictions roll out.

Philippine ISPs block Coinbase $COIN & Gemini $GEMI after the NTC & BSP ordered access restrictions on ~50 unauthorized trading platforms; Binance $BNB was previously blocked in March 2024.

Alpha


Hyperliquid $HYPE launches Earn feature; users can supply $USDC to earn yield.

OpenEden $EDEN launches yield-bearing stablecoin $USDO on Kaia; also launches $cUSDO on Solana $SOL.

Rainbow $RWBW launches prediction markets for all users on iOS & Android; feature powered by Polymarket $POLY; Rainbow points program is ongoing.

RISEx, a perpetuals DEX on RISE $RISE chain, launches public testnet; RISE chain to launch mainnet soon.

ICYMI Fogo $FOGO completes first round of snapshots for Flames Season 1.5; snapshot includes Fogo Fishing, Valiant LPing, & USDC transfers; Season 1.5 is still ongoing.

ICYMI Hyperliquid $HYPE lists Lighter $LIT hyperps; users can long or short with up to 3x leverage; currently trading at ~$3.4 (~$3.4B FDV).

Airdrops


• ⭐️ Base $BASE distributes winnings from its Holiday Rewards campaign; users can check the Base app to see if they won.

Lighter $LIT announces there will be no airdrop claim process; tokens will automatically be distributed to wallets; prediction markets forecast a ~93% chance Lighter launches an airdrop by the end of December.

Fogo $FOGO announces updated tokenomics; allocates 6% of genesis supply for 'Community Airdrop', 1.5% on January 13th & 4.5% for future rewards.

Billions completes snapshot #1 for its upcoming airdrop; Billions Power Points holders, creators, Genesis & Supermasks NFT holders, & more will be eligible.

Brevis $BREV announces tokenomics; 28.7% is allocated for 'Community Incentives'; 3.5% is allocated for 'Airdrops'; to launch airdrop registration soon.

HeyElsa to launch airdrop checker in January; HeyElsa V1 & V2 points holders will be eligible; to launch airdrop claim in January (tentative).

ICYMI Espresso $ESP launches airdrop registration, eligibility checker; to add additional airdrop eligibility criteria soon; to launch airdrop claim in early 2026.

Finance News


US President Trump to soon announce a nominee for the Federal Reserve Chair; prediction markets forecast an ~92% chance a nominee is announced by the end of January.

• ⭐️ Gold $XAU, Silver $XAG, & Platinum $XPG reach new all-time highs; Gold is up ~72% YTD, Silver is up ~166% YTD, & Platinum is up ~160% YTD.

Nvidia $NVDA announces $20B licensing deal with Groq, an AI hardware company; Nvidia to also hire Groq founder Jonathan Ross and other employees.

US announces new tariffs on Chinese semiconductors, though it will be 0% until June 2027; the new tariffs are the result of a year-long survey launched by the US Bureau of Industry and Security.

China sanctions 20 US defense firms & 10 executives in response to the $11.1B US arms sales to Taiwan; sanctions include Boeing $BA, Northrop Grumman $NOC, Anduril Industries, Palmer Luckey, among others.

ZOOZ Strategy $ZOOZ receives a Nasdaq compliance notice after its stock fell below the $1 minimum bid-price requirement; ZOOZ has until June 2026 to recover or face potential delisting.

Upexi $UPXI files a shelf registration with the US SEC to raise up to $1B; currently holds 2,106,989 SOL (~$258M).

Security and Exploits


• ⭐️ Trust Wallet's $TWT browser extension (v2.68) is compromised; advises users on v2.68 to disable the extension and upgrade to v2.69; ~$7M has been stolen, though Trust Wallet says it will compensate affected users.

Brian Armstrong says an "ex-Coinbase customer service agent was just arrested," thanks to the Hyderabad Police in India; Coinbase disclosed that cybercriminals bribed agents to steal customer data in May.

Polymarket $POLY confirms multiple users experienced losses due to a security issue involving a third-party provider; Polymarket says the issue has since been resolved and no risks remain.

Lighter $LIT publishes the code that verifies every operation of Lighter; also completes audits of its perpetual and spot circuits.

Gnosis Chain $GNO hard forks to recover ~$9.4M from recent Balancer hack; the DAO will decide on compensation and distribution plans.

Solstice's $USX temporarily depegged due to a secondary market liquidity issue; Solstice says the custodied assets backing USX remain unaffected and over 100% collateralized.

Koinly discloses potential data leak due to a third-party provider breach; affected data includes name, email address, approximate location, & device information.

Token Unlocks


• Humanity $H / ~$16M / DEC 25th
• Plasma $XPL / ~$12M / DEC 25th
• Jupiter $JUP / ~$11M / DEC 28th
• Hyperliquid $HYPE / ~$257M / DEC 29th
• Kamino $KMNO / ~$11M / DEC 30th
Sourced from Tokenomist


Funding


HashKey Capital $HSK $3887HK raises $250M for HashKey Fintech Multi-Strategy Fund IV.

• ⭐️ Architect raises $35M in Series A funding led by Miami International Holdings $MIAX and Tioga Capital.

Coinbax raises $4.2M in Seed funding led by BankTech Ventures.

easy[.]fun raises $2M in Seed funding led by Mirana Ventures.

Rocket raises $1.5M in Pre-Seed funding led by Electric Capital.

The Degen Farmer

Top stablecoin yield farms of the day, more than $3,000,000 in TVL. DYOR and step up your farming game!

PROTOCOLASSETSAPY
Peapods Finance logoPeapods Finance (Ethereum)USDC44.18%
Indigo logoIndigo (Cardano)IUSD40.69%
ThalaSwap logoThalaSwap (Aptos)USDTUSDC31.84%
Merkl logoMerkl (Ethereum)LVUSDCUSDC20.45%
Accountable logoAccountable (Monad)USDC18.79%
Wildcat Protocol logoWildcat Protocol (Ethereum)HALALUSDC18.50%
Hyperion logoHyperion (Aptos)USD1USDC17.93%
Tapp Exchange logoTapp Exchange (Aptos)USD1USDTUSDC17.72%
. . .

🌿 OpenEden: Tokenized Real-World Assets

🌿 What is OpenEden: OpenEden is a real-world asset (RWA) tokenization platform that brings US Treasury Bill yields on-chain. Its key products include TBILL, tokenized T-Bills rated AA+ by S&P Global Ratings and A by Moody's, and USDO, a regulated yield-bearing stablecoin. Backed by investors like YZi Labs and Ripple, OpenEden provides compliant access to traditional finance yields in DeFi with TVL exceeding $200M.

🚀 Latest Updates: OpenEden recently outlined its strategic blueprint to expand tokenization with new offerings like tokenized funds, multi-strategy yield tokens, structured products, regional stablecoins, and cross-border payment networks. This builds on earlier fundraising with YZi Labs in 2024. A new strategic investment round from Ripple, Lightspeed Faction, Anchorage Digital Ventures, and others will support growth of its end-to-end RWA tokenization-as-a-service platform for issuing and managing regulated tokenized products.

⚡ Why OpenEden Stands Out: OpenEden delivers institutional-grade infrastructure with trusted partners like BNY as primary custodian for TBILL (~$115M TVL). USDO (~$93M TVL) is a regulated yield-bearing stablecoin issued by a Bermuda-licensed entity. Founded by Jeremy Ng (formerly at Goldman Sachs, Morgan Stanley, and Gemini), the team brings strong TradFi experience to on-chain finance.

👉 Mint TBILL or USDO today and earn regulated on-chain yields!

. . .

That’s it for today’s edition! See you soon.

Reply

or to participate.